ZeroHour

CVE-2018-14836

CVSS 3.0
6.5 medium
EPSS
<1%p61
Published
()
Modified
Description

Subrion 4.2.1 is vulnerable to Improper Access control because user groups not having access to the Admin panel are able to access it (but not perform actions) if the Guests user group has access to the Admin panel.

Vendors
subrion
Products
subrion cms
Weakness
CWE-269
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.